Dropped Files | ZeroBOX
Name aab6db12d3a880d6_~wrs{f71e81b5-1b12-4928-be11-eb40b84d7c26}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{F71E81B5-1B12-4928-BE11-EB40B84D7C26}.tmp
Size 6.0KB
Processes 2852 (WINWORD.EXE)
Type data
MD5 21e31128136e9e98b76c617fff2760b6
SHA1 ab73d99ca638ff3d91b0ba1a324cc94fe7eef61b
SHA256 aab6db12d3a880d6484dc68b5590591c195986c277a44ee6557b28113e36390a
CRC32 867C6171
ssdeep 96:upzz2kpo2hZ2HYyMOvRVCjHK3HeJH2QgjmC8+NKhPwB1GboXwYUt:I32Q/0VR0jHK3Pm+Nz1G0XW
Yara None matched
VirusTotal Search for analysis
Name 4c92c2b4b537d1de_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2852 (WINWORD.EXE)
Type data
MD5 61d42bf36a22da2364947427f74f72bd
SHA1 19f4e5568bc8078c8d1cf9cc611d89a09f98fdf2
SHA256 4c92c2b4b537d1de1a35650afc10189d665e0786895d461183144ebc3465d4ac
CRC32 1E8D8017
ssdeep 3:yW2lWRdvL7YMlbK7lxnlX:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis
Name 5558a18fe451179e_~$gyty.wbk
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$gyty.wbk
Size 162.0B
Processes 2852 (WINWORD.EXE)
Type data
MD5 2d1d8eb20954efcd2da328633ffaa857
SHA1 a626dcdd5727257c6fe4176d6ce8d6ff77138efb
SHA256 5558a18fe451179e75b2071097b7b786e9124f15bc02eee94d296b4e65953b3b
CRC32 8B2FCF9B
ssdeep 3:yW2lWRdvL7YMlbK7lZ3nfYn1:y1lWnlxK733nQ
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{cdd192d3-0b12-4393-966b-e1ae4a03c10e}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{CDD192D3-0B12-4393-966B-E1AE4A03C10E}.tmp
Size 1.0KB
Processes 2852 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis